]> The Tcpdump Group git mirrors - tcpdump/commit
CVE-2017-13045/VQP: add some bounds checks
authorDenis Ovsienko <[email protected]>
Sat, 29 Jul 2017 22:21:00 +0000 (23:21 +0100)
committerDenis Ovsienko <[email protected]>
Wed, 13 Sep 2017 11:25:44 +0000 (12:25 +0100)
commit3b36ec4e713dea9266db11975066c425aa669b6c
treee0319cb21598299eeb8591c8483731aff94a9614
parentc2f6833dddecf2d5fb89c9c898eee9981da342ed
CVE-2017-13045/VQP: add some bounds checks

This fixes a buffer over-read discovered by Bhargava Shastry,
SecT/TU Berlin.

Add a test using the capture file supplied by the reporter(s).
print-vqp.c
tests/TESTLIST
tests/vqp-oobr.out [new file with mode: 0644]
tests/vqp-oobr.pcap [new file with mode: 0644]